Splunk SPLK-1003 Question Answer
In which Splunk configuration is the SEDCMD used?
props, conf
inputs.conf
indexes.conf
transforms.conf
https://docs.splunk.com/Documentation/Splunk/8.0.5/Forwarding/Forwarddatatothird-partysystemsd
"You can specify a SEDCMD configuration in props.conf to address data that contains characters that the third-party server cannot process. "
TESTED 15 Aug 2025
Copyright © 2014-2025 ACE4Sure. All Rights Reserved